[OpenAFS] uw-imap & tokens

David Howells dhowells@redhat.com
Wed, 04 Apr 2007 21:28:28 +0100


Jeffrey Hutzelman <jhutz@cmu.edu> wrote:

> It shouldn't get attached to the default session keyring at all, because that
> would cause the PAG to be inherited by newly-created sessions for that UID,
> wouldn't it?

That's what appeared to be shown in Miles's "keyctl show" output:

	Session Keyring
	       -3 --alswrv      0     0  keyring: _uid_ses.0
		2 --alswrv      0     0   \_ keyring: _uid.0
	 29391168 ----s--v      0     0   \_ afs_pag: _pag

That would seem to be odd, given that the AFS code appears to forcibly replace
the session keyring when setpag() is invoked.

Is it possible that Miles has an older version of that piece of code?

David